Fast Detection and Mitigation to DDoS Web Attack based on Access Frequency

被引:0
|
作者
Tran, Thang M. [1 ]
Khanh-Van Nguyen [1 ]
机构
[1] Hanoi Univ Sci & Technol, Sch Informat Technol & Commun, Hanoi, Vietnam
来源
2019 IEEE - RIVF INTERNATIONAL CONFERENCE ON COMPUTING AND COMMUNICATION TECHNOLOGIES (RIVF) | 2019年
关键词
DDoS Attacks; DDoS Detection and Mitigation; Access Frequency;
D O I
10.1109/rivf.2019.8713762
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
We have been investigating methods for establishing an effective, immediate defense mechanism against the DDoS attacks on Web applications via hacker botnets, in which this defense mechanism can be immediately active without preparation time, e.g. for training data, usually asked for in existing proposals. In this study, we propose a new mechanism, including new data structures and algorithms, that allow the detection and filtering of large amounts of attack packets (Web request) based on monitoring and capturing the suspect groups of source IPs that can be sending packets at similar patterns, i.e. with very high and similar frequencies. The proposed algorithm places great emphasis on reducing storage space and processing time so it is promising to be effective in real-time attack response.
引用
收藏
页码:136 / 141
页数:6
相关论文
共 50 条
  • [1] DDoS Attack Detection and Mitigation Using SDN: Methods, Practices, and Solutions
    Bawany, Narmeen Zakaria
    Shamsi, Jawwad A.
    Salah, Khaled
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2017, 42 (02) : 425 - 441
  • [2] DDoS Attack Detection and Mitigation Using SDN: Methods, Practices, and Solutions
    Narmeen Zakaria Bawany
    Jawwad A. Shamsi
    Khaled Salah
    Arabian Journal for Science and Engineering, 2017, 42 : 425 - 441
  • [3] Distributed packet pairing for reflector based DDoS attack mitigation
    Al-Duwairi, Basheer
    Manimaran, G.
    COMPUTER COMMUNICATIONS, 2006, 29 (12) : 2269 - 2280
  • [4] Ensemble-based DDoS Detection and Mitigation Model
    Bhatia, Sajal
    Schmidt, Desmond
    Mohay, George
    PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON SECURITY OF INFORMATION AND NETWORKS, 2012, : 79 - 86
  • [5] Enhancing DDoS Attack Detection and Mitigation in SDN Using an Ensemble Online Machine Learning Model
    Alashhab, Abdussalam Ahmed
    Zahid, Mohd Soperi
    Isyaku, Babangida
    Elnour, Asma Abbas
    Nagmeldin, Wamda
    Abdelmaboud, Abdelzahir
    Abdullah, Talal Ali Ahmed
    Maiwada, Umar Danjuma
    IEEE ACCESS, 2024, 12 : 51630 - 51649
  • [6] DDoS Attack Intrusion Detection System Based on Hybridization of CNN and LSTM
    Issa, Ahmet Sardar Ahmed
    Albayrak, Zafer
    ACTA POLYTECHNICA HUNGARICA, 2023, 20 (02) : 105 - 123
  • [7] Ontology-based Modeling of DDoS Attacks for Attack Plan Detection
    Ansarinia, Morteza
    Asghari, Seyyed Amir
    Souzani, Afshin
    Ghaznavi, Ahmadreza
    2012 SIXTH INTERNATIONAL SYMPOSIUM ON TELECOMMUNICATIONS (IST), 2012, : 993 - 998
  • [8] SDN-based detection and mitigation of DDoS attacks on smart homes
    Garba, Usman Haruna
    Toosi, Adel N.
    Pasha, Muhammad Fermi
    Khan, Suleman
    COMPUTER COMMUNICATIONS, 2024, 221 : 29 - 41
  • [9] A DDoS Attack Detection Method Based on Natural Selection of Features and Models
    Ma, Ruikui
    Chen, Xuebin
    Zhai, Ran
    ELECTRONICS, 2023, 12 (04)
  • [10] A Runtime DDoS Attack Detection Technique Based on Stochastic Mathematical Model
    Farias, Euclides Peres, Jr.
    Jacinto Tavares, Allainn Christiam
    Nogueira, Michele
    2023 IEEE LATIN-AMERICAN CONFERENCE ON COMMUNICATIONS, LATINCOM, 2023,